Splunk Tech Talks
Deep-dives for technical practitioners.

Getting Slack Data into Splunk

melissap
Splunk Employee
Splunk Employee

View our Tech Talk: Platform Edition, Getting Slack Data into Splunk on demand.

The Slack Audit Logs API is for monitoring the audit events happening in a Slack Enterprise Grid organization to ensure continued compliance, to safeguard against any inappropriate system access, and to allow the user to audit suspicious behavior within the enterprise.

This Tech Talk is a step by step tutorial on how to ingest your Slack data in Splunk, through the Splunk Add-on for Slack, which is an add-on that leverages the Slack Audit logs API to gain additional insight into your organization's security posture. 

Tune in to learn about:

  • Getting started with Splunk Cloud and getting your organization’s Slack data in Splunk
  • The value of Slack audit logs
  • How to use the Splunk add-on & application for Slack

Have more questions? Check out our Covid-19 conversations in Splunk Answers community for more!

Contributors
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...